Malware

PWS:Win32/Sapbexts!rfn removal

Malware Removal

The PWS:Win32/Sapbexts!rfn is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What PWS:Win32/Sapbexts!rfn virus can do?

  • Unconventionial language used in binary resources: Russian

How to determine PWS:Win32/Sapbexts!rfn?


File Info:

crc32: 5F3C3F2B
md5: 806ce77c89c2a25d67603b34fef8526f
name: 806CE77C89C2A25D67603B34FEF8526F.mlw
sha1: 3ac5f95429da19c4122e40beaadb8aceb303d558
sha256: 4049e8f298a459dac9c3c6c2fade5fc63b22115c08df61b4decb74984aec41bc
sha512: 5c643e4ece17b056fea5d97c7e61e10b2a50539f9f092b25f24b922598d73df04855a18d33091c4a68da26ddf3453de8853f8d571e8d558ebd44a48593be30f8
ssdeep: 1536:Cj2ko2JMiX5l5CGQTLdhuvMb8mxciyPL:Nkokf5l5CGe7uklIL
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright (C) 2008
InternalName: Intel Chipset Support
FileVersion: 3, 1, 1, 1
CompanyName: Intel NGO Chipset
LegalTrademarks: Intel Corp.
ProductName: Chipset Support
ProductVersion: 3, 1, 1, 1
FileDescription: Intel Chipset Support Service
OriginalFilename: Chipset
Translation: 0x0409 0x04b0

PWS:Win32/Sapbexts!rfn also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 005326c61 )
LionicTrojan.Multi.Generic.4!c
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
ALYacGen:Variant.Buzy.210
CylanceUnsafe
SangforSuspicious.Win32.Save.a
CrowdStrikewin/malicious_confidence_90% (D)
AlibabaTrojanPSW:Win32/EncPk.cc620d05
K7GWTrojan ( 005326c61 )
Cybereasonmalicious.c89c2a
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:CrypterX-gen [Trj]
KasperskyUDS:DangerousObject.Multi.Generic
BitDefenderGen:Variant.Buzy.210
NANO-AntivirusTrojan.Win32.Crypted.dofaiy
MicroWorld-eScanGen:Variant.Buzy.210
TencentTrojan.Win32.Cosmu.b
Ad-AwareGen:Variant.Buzy.210
SophosMal/Generic-R + Mal/EncPk-ABF
ComodoTrojWare.Win32.Cosmu.abcd@25iqiu
BitDefenderThetaGen:NN.ZexaF.34236.hq0@a4Yb80bc
McAfee-GW-EditionBehavesLike.Win32.Duptwux.cm
FireEyeGeneric.mg.806ce77c89c2a25d
EmsisoftGen:Variant.Buzy.210 (B)
SentinelOneStatic AI – Malicious PE
AviraTR/Dropper.Gen
eGambitGeneric.Malware
Antiy-AVLTrojan/Win32.TSGeneric
MicrosoftPWS:Win32/Sapbexts!rfn
ArcabitTrojan.Buzy.210
GDataGen:Variant.Buzy.210
McAfeeArtemis!806CE77C89C2
MAXmalware (ai score=100)
VBA32Trojan.Wacatac
MalwarebytesMalware.Heuristic.1003
IkarusTrojan.Win32.Patched
MaxSecureTrojan.Malware.1728101.susgen
AVGWin32:CrypterX-gen [Trj]

How to remove PWS:Win32/Sapbexts!rfn?

PWS:Win32/Sapbexts!rfn removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment